Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi all,
I need to configure an SSH username and password for a client who wants to integrate Tufin whereby they can create/modify/delete ACL's, as well as create object-groups, routes, NAT statements etc.
Privilege level 15 would ofcourse allow for...
Hi all,
I need help with something.
I manage a multi-context firewall.
The rulebase is huge!
Up until this point we never configured ACL logging on the rules.
Now the client wants use to log the ACL's.
ie:
access-list TEST deny ip any any log
I wou...
Thanks Marius.
Your advice has been noted.
For now I have informed the client of the risks involved. We plan to roll it out little by little so we can monitor how the ASA handles it.
I also advised we do this only on business critical ACL's.
Fing...
Thanks for your swift response Marius.
There are huge amounts of traffic passing through this multi-context ASA.
The client wants logging on all ACL's - I think its for some kind of Tufin integration.
So you would advise against this?
Also, then ...